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(54) Digital recording protection system 

(57) A system for producing an output scrambled 
digital data stream from an input scrambled digital data 
stream. The input scrambled digital data stream in- 
cludes a plurality of control messages (ECMs), each 
ECM including coded information for generating a con- 
trol word (CW) associated with the ECM and being en- 
coded using an ECM key. The input scrambled digital 
data stream also includes a plurality of segments of 
scrambled digital data, each segment of scrambled dig- 
ital data being associated with one of the plurality of EC- 



Ms and being scrambled using the CW associated with 
the ECM. A method for producing the output scrambled 
digital data stream includes replacing each of the plu- 
rality of ECMs with a corresponding transformed ECM 
(TECM) each corresponding TECM comprising coded 
information for generating the CW associated with the 
corresponding ECM and being encoded using a TECM 
key. thus producing the output scrambled digital data 
stream, wherein the ECM key is replaced with a new 
ECM key at an ECM key change time, and the TECM 
key Is not replaced at the ECM key change time. 
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Description 

FIELD OF THE INVENTION 

The present invention relates to the production and 
recording of digital data streams, particularly scrannbled 
digital data streams such as scrambled digital television 
data streams. 

BACKGROUND OF THE INVENTION 

Systems for scrambling a television data stream are 
well-known in the art. One such system is described in 
the following US Patents; 5.282.249 to Cohen et al.; 
5.481,609 to Cohen et al. Scrambled television data 
streams described in the Cohen et al. patents comprise 
both scrambled data representing television signals and 
coded control messages, also known as ECMs. The EC- 
Ms of Cohen et al. comprise, in a coded form, data nec- 
essary for generating a control word (CW) which may 
be used to descramble the scrambled data representing 
television signals. 

While the two patents to Cohen et al, describe an 
analog system, that is, a system in which analog televi- 
sion data streams are broadcast to television sets, it is 
appreciated that similar ECM methods may also be 
used for digital television data streams. Generally, the 
scrambling techniques used for scrambling analog tel- 
evision signals such as, for example, the well-known 
"cut-and-rotate" technique, are chosen for their applica- 
bility to analog signals. In scrambling of digital television 
signals other scrambling techniques, well-known in the 
art. are used, the techniques being more appropriate to 
digital signals such as, for example, applying the well- 
known DES algorithm to the digital television signals. 

Methods of transmitting a scrambled digital signal, 
including ECMs, are described in the MPEG-2 standard. 
ISO/IEC 13818-6, 12 July 1996 and subsequent edi- 
tions. 

Recording of analog television signals such as, for 
example, recording using a VCR, is well-known in the 
art and VCR equipment is widely commercially available 
from a variety of manufacturers. Recording of digital tel- 
evision signals is also known. A consumer digital VCR 
is described, for example, in the article "A Consumer 
Digital VCR for Digital Broadcasting" by Okamoto et al.. 
published in IEEE Transactions on Consumer Electron- 
ics. Vol. 41, No. 3, August 1995, pp. 643 - 649. 

US Patent 5,574,787 to Ryan describes an appara- 
tus and method for copy protection for video platforms 
in which a specially adapted video recorder, playback 
device, or set top decoder is used to protect copyright 
material. 

European patent application EP 0 714 204 A2, as- 
signed to LG Electronics. Inc., describes a method for 
copy protection in digital video systems. 

The disclosures of all references mentioned above 
and throughout the present specification are hereby in- 



corporated herein by reference. 

SUMMARY OF THE INVENTION 

5 The present invention seeks to provide an improved 
system for producing and recording digital data streams, 
and particularly for protecting recorded digital data 
streams including digital television data. 

The prior art digital recording systems referred to 

10 above do not fully address the problem of recording a 
scrambled digital data stream. The term "digital data 
stream", as used throughout the present specification 
and claims, refers in a broad sense to any stream of dig- 
ital data transmitted continuously at least during a par- 

'5 ticular period of time, and particularly includes broad- 
cast digital data such as broadcast digital television sig- 
nals. The term "scrambling" in all of its forms, as used 
throughout the present specification and claims, refers 
to any method of scrambling, encoding, or encrypting 

20 data, many such methods being well-known in the art. 

A digital VCR such as that described by Okamoto 
et al. records and reproduces a digital bit stream; that 
is, the digital VCR of Okamoto et al. records and pro- 
duces whatever bits are presented thereto. Thus, the 

25 digital VCR of Okamoto et al. could record and repro- 
duce a scrambled digital data stream. In the system of 
Okamoto et al., however, problems could arise in de- 
scrambling the recorded data stream such as, for exam- 
ple, for playing on a television. 

30 As is well known in the art, security functions in 
scrambled television systems are typically controlled by 
a removable security element such as a removable 
smart card. Furthermore, it is well known in the art that, 
in actual practice, operators of scrambled television sys- 

3S tems periodically replace the removable security ele- 
ments found in consumer home systems in order to 
change the security and scrambling behavior of the sys- 
tem. 

After replacement of the removable security ele- 

40 ment or, typically, after a limited transition period follow- 
ing replacement of the removable security element, 
broadcasts scrambled with methods applicable to the 
previous removable security element can not be de- 
scrambled using the present removable security ele- 

45 ment. Typically, therefore, if a recording were made on 
a system such as that described by Okamoto et al. of a 
broadcast from a digital system using techniques similar 
to those described by Cohen et al. and in the MPEG-2 
standard, both referred to above, the recording would 

50 become unusable as soon as a change of removable 
security elements was carried out by the scrambled tel- 
evision system operator The present invention seeks to 
provide apparatus and methods for recording digital da- 
la streams which, in addition to having other features, 

55 overcome the problem of unusability of recordings after 
a change of removable security elements. 

There is thus provided in accordance with a pre- 
ferred embodiment of the present invention a method 



■A eta 



3 



EP0 858 184 A2 



4 



for producing an output scrambled digital data stream 
from an input scrambled digital data stream, the input 
scrambled digital data stream including a plurality of 
control messages (ECMs). each ECM including coded 
information for generating a control word (CW) associ- 
ated with the ECM and being encoded using an ECM 
key. the input scrambled digital data stream also includ- 
ing a plurality of segments of scrambled digital data, 
each segment of scrambled digital data being associat- 
ed with one of the plurality of ECMs and being scram- 
bled using the C W associated with the ECM, the method 
Including replacing each of the plurality of ECMs with a 
corresponding transformed ECM (TECM), each corre- 
sponding TECM including coded information for gener- 
ating the CW associated with the corresponding ECM 
and being encoded using a TECM key, thus producing 
the output scrambled digital data stream, wherein the 
ECM key is replaced with a new ECM key at an ECM 
key change time, and the TECM key is not replaced at 
the ECM key change time. 

Further in accordance with a preferred embodiment 
of the present invention the step of replacing includes 
performing the following steps tteratively for each one 
of the plurality of ECMs: receiving the one ECM and the 
segment of scrambled digital data associated therewith, 
generating the associated CW from the one ECM using 
the ECM key, generating a transformed ECM (TECM) 
including coded information for generating the associ- 
ated CW and being encoded using a TECM key, output- 
ting the TECM. and outputting the segment of scram- 
bled digital data associated with the ECM. 

There is also provided in accordance with another 
preferred embodiment of the present invention a meth- 
od for recording, on a recording medium, a broadcast 
scrambled digital data stream to produce a scrambled 
digital recording, the broadcast scrambled digital data 
stream including a plurality of control messages (EC- 
Ms), each ECM including coded information for gener- 
ating a control word (CW) associated with the ECM and 
being encoded using an ECM key, the broadcast scram- 
bled digital data stream also including a plurality of seg- 
ments of scrambled digital data, each segment of 
scrambled digital data being associated with one of the 
plurality of ECMs and being scrambled using the CW 
associated with the ECM, the method including receiv- 
ing the broadcast scrambled digital data stream, and re- 
cording on the recording medium a scrambled digital da- 
ta stream including a plurality of transformed ECMs 
(TECMs) and the plurality of segments of digital data, 
wherein each of the plurality of ECMs is replaced with 
a corresponding TECM, each corresponding TECM in- 
cluding coded information for generating the CW asso- 
ciated with the corresponding ECM and being encoded 
using a TECM key. 

Further in accordance with a preferred embodiment 
of the present invention the recording step includes per- 
forming the following steps iteratively for each one of the 
plurality of ECMs in the broadcast scrambled digital data 



stream: generating the associated CW from the one 
ECM using the ECM key generating a TECM including 
coded information for generating the associated CW 
and being encoded using a TECM key, recording the 
5 TECM on the recording medium, and recording the seg- 
ment of scrambled digital data associated with the one 
ECM on the recording medium. 

Still further in accordance with a preferred embod- 
iment of the present invention the recording medium in- 
10 eludes a digital tape. 

Further in accordance with a preferred embodiment 
of the present invention the recording medium includes 
a computer-accessible storage medium associated with 
a computer. 

IS Additionally in accordance with a preferred embod- 
iment of the present invention the broadcast scrambled 
digital data stream includes a television scrambled dig- 
ital data stream. 

Moreover in accordance with a preferred embodi- 

20 ment of the present invention each of the plurality of EC- 
Ms is encoded using a hashing method. 

There is also provided in accordance with another 
preferred embodiment of the present invention appara- 
tus for recording, on a recording medium, a broadcast 

25 scrambled digital data stream to produce a recorded 
scrambled digital data stream, the broadcast scrambled 
digital data stream including a plurality of scrambling 
control messages (ECMs). each ECM including coded 
information for generating a control word (CW) associ- 

30 ated with the ECM and being encoded using an ECM 
key/and a plurality of segments of scrambled digital da- 
ta, each segment of scrambled digital data being asso- 
ciated with one of the plurality of ECMs and being 
scrambled using the CW associated with the ECM, the 

35 apparatus including receiving apparatus for receiving 
the broadcast scrambled digital data stream, and re- 
cording apparatus for recording on the recording medi- 
um a scrambled digital data stream including a plurality 
of transformed ECMs (TECMs) and the plurality of seg- 

40 ments of digital data, wherein each of the plurality of EC- 
Ms is replaced with a corresponding TECM, each cor- 
responding TECM including coded information for gen- 
erating the CW associated with the corresponding ECM 
and being encoded using a TECM key. 

45 There is also provided in accordance with another 
preferred embodiment of the present invention appara- 
tus for producing an output scrambled digital data 
stream from an input scrambled digital data stream, the 
input scrambled digital data stream including a plurality 

so of scrambling control messages (ECMs), each ECM in- 
cluding coded information for generating a control word 
(CW) associated with the ECM and being encoded us- 
ing an ECM key, and a plurality of segments of scram- 
bled digital data, each segment of scrambled digital data 

55 being associated with one of the plurality of ECMs and 
being scrambled using the CW associated with the 
ECM. the apparatus including ECM replacement appa- 
ratus for replacing each of the plurality of ECMs with a 
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corresponding transformed ECM (TECM), each corre- 
sponding TECM including coded information for gener- 
ating the CW associated with the corresponding ECM 
and being encoded using a TECM key. wherein the ECM 
key is replaced with a new ECM key at an ECM key 
change time, and the TECM key is not replaced at the 
ECM key change time. 

Further in accordance with a preferred embodiment 
of the present invention the recording apparatus in- 
cludes a CW extractor for generating the associated CW 
from each of the plurality of ECMs using the ECM key 
a TECM generator for receiving the associated CW from 
the CW extractor and for generating a TECM including 
coded information for generating the associated CW 
and being encoded using a TECM key, and medium re- 
cording apparatus for receiving the TECM from the 
TECM generator and the segment of scrambled digital 
data from the receiving apparatus and for recording the 
TECM and the segment of scrambled digital data asso- 
ciated with the one of the plurality of ECMs on the re- 
cording medium. 

Still further in accordance with a preferred embod- 
iment of the present invention the ECM replacement ap- 
paratus includes a CW extractor for generating the as- 
sociated CW from each of the plurality of ECMs using 
the ECM key. and a TECM generator for receiving the 
assdiciated CW from the CW extractor and for generat- 
ing a TECM including coded infomnation for generating 
the associated CW and encoded using a TECM key. 

Additionally in accordance with a preferred embod- 
iment of the present invention the apparatus includes a 
removable security device, wherein the removable se- 
curity device includes the CW extractor 

Moreover in accordance with a preferred embodi- 
ment of the present invention the removable security de- 
vice also includes the TECM generator 

Further in accordance with a preferred embodiment 
of the present invention the removable security device 
includes a smart card. 

There is also provided in accordance with another 
preferred embodiment of the present invention appara- 
tus for transforming a scrambling control message 
(ECM) including coded information for generating a con- 
trol word (CW) associated with the ECM and being en- 
coded using an ECM key into a transformed scrambling 
control message (TECM). the apparatus including ECM 
input apparatus for receiving the ECM. a CW extractor 
for generating the associated CW from the ECM using 
the ECM key, a TECM generator for generating a trans- 
formed ECM (TECM) including coded information for 
generating the associated C W and being encoded using 
a TECM key, and ECM output apparatus for outputting 
the TECM, wherein the ECM key is replaced with a new 
ECM key at an ECM key change time, and the TECM 
key is not replaced at the ECM change time. 

There is also provided in accordance with another 
preferred embodiment of the present invention appara- 
tus for producing an output scrambled digital data 



stream from an input scrambled digital data stream, the 
input scrambled digital data stream including a plurality 
of control messages (ECMs), each ECM including cod- 
ed information for generating a control word (CW) as- 
5 sociated with the ECM and being encoded using an 
ECM key the input scrambled digital data stream also 
including a plurality of segments of scrambled digital da- 
ta, each segment of scrambled digital data being asso- 
ciated with one of the plurality of ECMs and being 
10 scrambled using the CW associated with the ECM. the 
apparatus including scrambled digital data stream input 
apparatus for receiving an ECM and a segment of 
scrambled digital data associated therewith, ECM re- 
placement apparatus for replacing the ECM with a trans- 
is formed ECM (TECM), and scrambled digital data 
stream output apparatus for outputting the output 
scrambled digital data stream including the TECM and 
the segment of scrambled digital data, wherein the ECM 
key is replaced with a new ECM key at an ECM key 
20 change time, and the TECM key is not replaced at the 
ECM key change time. 

Further in accordance with a preferred embodiment 
of the present invention the apparatus includes ECM in- 
terface apparatus for outputting the ECM and receiving 
2S the TECM, 

Still further in accordance with a preferred embod- 
iment of the present invention the ECM interface is 
adapted to receive a removable security element. 

Additionally in accordance with a preferred embod- 
50 iment of the present invention the removable security 
element includes a smart card. 

There is also provided in accordance with another 
preferred embodiment of the present invention a meth- 
od for transforming a scrambling control message 
3S (ECM) including coded information for generating a con- 
trol word (CW) associated with the ECM and being en- 
coded using an ECM key into a transformed scrambling 
control message (TECM), the method including receiv- 
ing the ECM, generating the associated CW from the 
-to ECM using the ECM key. generating a transformed ECM 
(TECM) including coded information for generating the 
associated CW and being encoded using a TECM key 
and outputting the TECM, wherein the ECM key is re- 
placed with a new ECM key at an ECM change time, 
'^s and the TECM key is not replaced at the ECM change 
time. 

There is also provided in accordance with another 
preferred embodiment of the present invention a meth- 
od for producing an output scrambled digital data stream 

so from an input scrambled digital data stream, the input 
scrambled digital data stream including a plurality of 
control messages (ECMs), each ECM including coded 
information for generating a control word (CW) associ- 
ated with the ECM and being encoded using an ECM 

55 key, the input scrambled digital data stream also includ- 
ing a plurality of segments of scrambled digital data, 
each segment of scrambled digital data being associat- 
ed with one of the plurality of ECMs and being scram- 
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bled using the CW associated with the ECM. the method 
including receiving an ECM and a segment of scrambled 
digital data associated therewith, replacing the ECM 
with a transformed ECM (TECM). and outputting the 
output scrambled digital data stream including the 
TECM and the segment of scrambled digital data, 
wherein the ECM key is replaced with a new ECM key 
at an ECM key change time, and the TECM key is not 
replaced at the ECM key change time. 

Further in accordance with a preferred embodiment 
of the present invention the method also includes out- 
putting the ECM and receiving the TECM. 

Still further in accordance with a preferred embod- 
iment of the present invention the step of outputting the 
ECM and receiving the TECM includes outputting the 
ECM to a removable security element and receiving the 
TECM from the removable security element. 

Additionally in accordance with a preferred embod- 
iment of the present invention removable security ele- 
ment includes a smart card. 

BRIEF DESCRIPTION OF THE DRAWINGS 

The present invention will be understood and ap- 
preciated more fully from the following detailed descrip- 
tion, taken in conjunction with the drawings in which: 

Fig. 1 is a simplified partly pictorial, partly block-di- 
agram illustration of a scrambled digital data stream 
recording and playback system, constructed and 
operative in accordance with a preferred embodi- 
ment of the present invention; 
Fig. 2 is a simplified block diagram illustrating the 
production of a recording scrambled digital data 
stream from a broadcast scrambled digital data 
stream by a portion of the apparatus of Fig. 1 ; 
Fig. 3 is a simplified block diagram illustration of a 
portion of the apparatus of Fig. 1 ; 
Fig. 4 is a simplified flowchart illustration of a pre- 
ferred method of operation of the apparatus of Fig. 
3; and 

Fig. 5 is a simplified flowchart illustration of a pre- 
ferred implementation of step 210 of Fig. 4. 

DETAILED DESCRIPTION OF A PREFERRED 
EMBODIMENT 

Reference is now made to Fig. 1 which is a simpli- 
fied partly pictorial, partly block-diagram illustration of a 
scrambled digital data stream (SDDS) recording and 
playback system, constructed and operative in accord- 
ance with a preferred embodiment of the present inven- 
tion. The system of Fig. 1 comprises a television set 1 00. 
The television set 100 may comprise any appropriate 
commercially available television set. As described be- 
low, in accordance with the other elements of the system 
Fig. 1 described below, the television set 100 may com- 
prise either an appropriate analog television set or an 



appropriate digital television set. 

The system of Fig. 1 also comprises an integrated 
receiver-decoder (I RD) 1 1 0. The I RD 1 1 0 may be based 
on any appropriate commercially-available IRD opera- 
5 live to receive and decode a scrambled broadcast digital 
data stream and preferably additionally contains other 
hardware and/or software components, as described 
below. 

The system of Fig. 1 also comprises a removable 

10 security element, such as a smart card 1 20, in remova- 
ble operative attachment with the IRD 110. The smart 
card 120 is typically suitably programmed, as is well- 
known in the art. to provide control words (CWs) for de- 
scrambling of a scrambled broadcast digital data stream 

IS by the IRD 110. Methods for programming and utilizing 
smart cards sfuch as the smart card 1 20 to produce CWs 
are well-known in the art and are described, for exam- 
ple, in US Patents 5.282,249 to Cohen et al. and 
5,481,609 to Cohen et al.. referred to above, with suit- 

20 able modifications, as are well-known In the art and de- 
scribed above, particularly in the MPEG -2 standard, for 
operating on digital rather than on analog data. 

The system of Fig. 1 also preferably comprises a 
digital VCR 130, which may comprise any suitable dig- 

2S ital VCR such as. for example, the digital VCR described 
in the article "A Consumer Digital VCR for Digital Broad- 
casting" by Okamoto et al., referred to above. It is ap- 
preciated that any other appropriate digital recording ap- 
paratus may be used in place of the digital VCR 1 30, 

30 the digital VCR 1 30 being shown in Fig. 1 by way of ex- 
ample only. For example, and without limiting the gen- 
erality of the foregoing, an appropriate computer system 
may be used in place of the digital VCR 130, the com- 
puter system being typically operative to record onto a 

3S computer-accessible storage medium associated there- 
with. 

The IRD 110 is preferably operatively attached to 
the television set 100 and the digital VCR 130. It is ap- 
preciated that the IRD 110 may include digital-to-analog 

40 conversion apparatus (not shown), as is well known in 
the art. and may provide analog signals to the television 
set 100, in which case the television set 100 may com- 
prise an analog television set. Alternatively, the IRD 110 
may provide digital signals to the television set 100, in 

45 which case the television set 1 00 may comprise a digital 
television set. In any case, it is appreciated that digital 
signals are preferably used between the IRD 110 and 
the digital VCR 130. 

The operatton of the system of Fig. 1 is now briefly 

50 described. The I RD 110 receives a scrambled digital da- 
ta stream, also known herein as a SDDS, from a broad- 
cast source. The broadcast source may comprise any 
appropriate broadcast source such as, for example, a 
digital cable broadcast, a local digital television broad- 

5S cast, or a digital satellite television broadcast, all of 
which are well-known in the art. Typically, the SDDS 
may comprise an MPEG-2 data stream, as described in 
the MPEG-2 standard, referred to above. More gener- 
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ally, (t is appreciated that the present invention is not 
limited to television broadcasts, but is applicable to all 
types of digital broadcast, including data broadcasts, so 
that the broadcast source may comprise any appropri- 
ate source broadcasting a SDDS in appropriate format, s 

The IRD 110. in cooperation with the smart card 
120, is preferably operative to descramble the SDDS. 
Typically, as is well known in the art and as is described 
above, the SDDS comprises a plurality of ECMs. Each 
ECM is associated with, and is typically followed by. a 
scrambled digital data segment (SDSEG). Each ECM is 
typically encoded and comprises therein information, 
such as a seed, which can be used, typically by the 
smart card 1 20, to generate a CW, the CW in turn being 
utilizable to unscramble the associated SDSEG. is 

It is appreciated that many different methods may 
be used to imbed the seed in the ECM and that corre- 
sponding methods can be used to extract the seed 
therefrom and to generate the CW. For example and 
without limiting the generality of the foregoing, the seed 
may be the input to a one-way function such as a hash 
function, and the CW may be the result of performing 
the hash function on the seed. The CW, in turn, can be 
used, typically by the I RD 1 1 0, as a key for descrambling 
the scrambled data segment associated with the ECM. 

Reference is now additionally made to Fig. 2, which 
is a simplified block diagram illustrating the production 
of a recording scrambled digital data stream from a 
broadcast scrambled digital data stream by the IRD 110 
of Fig. 1. The block diagram of Fig. 2 comprises a sim- 30 
plified illustration of a broadcast SDDS 140. which, as 
described above, typically comprises a plurality of EC- 
Ms and a plurality of associated SDSEGs, such as: an 
nth ECM 145; an nth SDSEG 150 associated with the 
nth ECM 145; and n+lth ECM 155; and an n+lth SD- 3S 
SEG 160 associated with the n+lth ECM 155. It is ap- 
preciated that the block diagram of Fig. 2 is schematic 
only, and that the plurality of ECMs and the plurality of 
associated SDSEGs need not be physically contiguous. 
One particular example of the actual layout of ECMs and 
the associated SDSEGs in an SDDS is given in the 
MPEG-2 standard, referred to above. 

The IRD 110 of Fig. 1, in cooperation with the smart 
card 120, is preferably operative to process the broad- 
cast SDDS 140, in order to produce a recording SDDS 
165, as follows. Each ECM. such as the nth ECM 145, 
is processed as described above, typically using an 
ECM key. which may comprise a one-way function as 
described above, the ECM key being known to the smart 
card 1 20, in order to obtain the associated CW such as so 
an nth C W 1 70. The nth C W 1 70 is then processed using 
another key, referred to throughout the present specifi- 
cation and claims as a TECM key, in order to produce 
an nth TECM 175 which may later be used, with the 
TECM key, to generate the nth CW 170. ss 

Preferably each TECM, such as, for example, the 
nth TECM 1 75, is also signed with an appropriate digital 
signature, as is well known in the art. Preferably, each 
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TECM key is associated with a unique digital signature. 
Preferably, upon subsequent playback and descram- 
bling of the recording SDDS 165 the digital signature is 
checked, and only a valid digital signature indicating that 
the recording SDDS 165 was produced with the appa- 
ratus of Fig. 1 , typically particularly with the smart card 
120 of Fig. 1, will be descrambled by the apparatus of 
Fig. 1. The use of such a digital signature is considered 
preferable in order to discourage unauthorized duplica- 
tion and subsequent playback of the recording SDDS 
165 using apparatus other than the apparatus of Fig. 1, 
particularly using a different smart card at some other 
location in place of the smart card 120. 

The TECM key may be of similar type to the ECM 
key such as, for example, a one-way function. The 
TECM key. however, is preferably permanently associ- 
ated with the system of Fig. 1 ; particularly, the TECM 
key does not change even when the smart card 120 is 
replaced by the system operator, as described above. 
Thus, it will be appreciated that any SDDS associated 
with the TECM key may still be descrambled using the 
apparatus of Fig. 1 even after such a replacement of the 
smart card 1 20. It is appreciated that the TECM key may 
be produced in a wide variety of ways, such as, for ex- 
ample, the TECM key may be associated with and, typ- 
ically, stored in the IRD 110; the snnart card 120; a com- 
bination of the IRD 1 1 0 and the smart card 1 20, such as 
partly in the IRD 110 and partly in the smart card 120; 
or another portion of the system of Fig. 1 (not shown). 
It is also appreciated that the TECM key may be per- 
sonal to a particular user of the apparatus of Fig. 1 . with 
more than one TECM key being associated with the ap- 
paratus of Fig. 1 and the appropriate TECM key being 
produced upon identification of a user of the apparatus 
of Fig. 1 by any method well known in the art. such as 
by provision of a personal identification number (PIN). 

It is appreciated that, in a case where the TECM key 
is at least partially associated with or stored in a remov- 
able security element such as the smart card 120. a 
method is preferably provided for keeping the TECM key 
unchanged even when the smart card 120 is replaced, 
as described above. Methods for providing an unchang- 
ing item of information are well known in prior art scram- 
bled television systems using removable security ele- 
ments. For example, and without limiting the generality 
of the foregoing, when the smart card 120 is replaced 
an operation may be carried out whereby an unchanging 
item of information stored only in the smart card 1 20 is 
temporarily stored in the IRD 110 and is then written to 
the replacement smart card (not shown) and erased 
from the IRD 110. Such prior art methods, for example, 
may be used to cause a TECM key to be unchanging 
even when the smart card 120 is replaced. 

After the nth TECM 175 is generated and placed in 
the recording SDDS 165. the nth SDSEG 150 may be 
placed in the recording SDDS 165. It is appreciated that 
the present invention provides an apparatus and meth- 
od for producing an appropriate recording SDDS 165 
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without requiring descrambling of any SDSEG such as 
the nth SDSEG 150 during the production of the record- 
ing SDDS 165 and without requiring a scrambling oper- 
ation to produce an SDSEG to occur in the systenn of 
Fig. 1 at any linne. 

It is appreciated that the method described above 
with respect to the nth ECM 145 and the nth SDSEG 
1 50 may be repeatedly or iteratively applied to other EC- 
Ms and the associated SDSEGs such as. for. example, 
the n+1th ECM 155. associated with an n+lth CW 177, 
to produce an n+lth TECM 180 and the n+lth SDSEG 
160 in the recording SDDS 165. 

It is also appreciated that, during playback of a re- 
cording SDDS from the digital VCR 1 30 through the IRD 
110 and associated smart card 120tothatelevision 100, 
the I RD 1 1 0 and the associated smart card 1 20 may per- 
form operations similar to those performed on a broad- 
cast SDDS. but using the TECM key rather than the 
ECM key. 

Reference is now made to Fig. 3, which is a simpli- 
fied block diagram illustration of a portion of the I RD 1 1 0 
of Fig. 1 . The portion of the IRD 110 shown in Fig. 3 is 
shown for providing a better understanding of the con- 
struction and operation of the. present invention, with 
standard components well-known in the art, such as 
components used to receive a broadcast SDDS, not 
shown in Fig. 3. It is appreciated that the components 
shown in Fig. 3 may be provided in hardware or in soft- 
ware and. if provided in software, may be provided in 
combination in software running on one or more gener- 
al-purpose or special-purpose processors, as is well- 
known in the art. 

The apparatus of Fig. 3 comprises a descrambler 
185 and a control word extractor 190. The control word 
extractor 190 may preferably operate as described 
above to extract CWs from EC Ms in the SDDS. as de- 
scribed above, and to provide the CWs to the descram- 
bler 1 85. The descrambler 1 85 meanwhile receives SD- 
SEGs in the SDDS. as described above, and applies 
each CW received from the descrambler 185 to the as- 
sociated SDSEG to produce a clear signal. 

In addition, the control word extractor 190 prefera- 
bly supplies the CWs to a scrambled digital data stream 
transformer 195. the scrambled digital data stream 
transformer 1 95 preferably comprising a TECM gener- 
ator 200. The scrambled data stream transformer 1 95 
also receives the broadcast SDDS and operates, as de- 
scribed above with reference to Figs. 1 and 2 and below 
with reference to Figs. 4 and 5, to produce therefrom a 
recording SDDS, which is typically provided to a record- 
er 

It may thus be appreciated that descrambling oper- 
ations to produce a clear signal, the descrambling op- 
erations being typically similar to descrambling opera- 
tions well-known in the art. may occur in the apparatus 
of Fig. 3 in parallel with the production of a recording 
SDDS. It is appreciated that, in a preferred implemen- 
tation of the apparatus of Fig. 3, adequate buffering may 



be provided in the scrambled digital data stream trans- 
former 1 95 or elsewhere in order to permit continuous 
production of the recording SDDS from the broadcast 
SDDS. Such methods of buffering are well-known in the 
5 art. 

It is further appreciated that the apparatus of Fig. 3 
may be operative to descramble a recording SDDS and 
provide a clear signal therefrom by providing the record- 
ing SDDS as input to the apparatus of Fig. 3 in place of 
10 the broadcast SDDS. the control word extractor being 
operative in such a mode to provide control words, as 
described above, using a TECM key rather than an ECM 
key. 

Reference is now made to Fig. 4 which is a simpli- 

'5 tied flowchart illustration of a preferred method of oper- 
ation of the apparatus of Fig. 3. The method of Fig. 4 
preferably comprises the following steps: 

An input SDDS is received (step 205). Each ECM 
in the input SDDS is replaced with a TECM. the ECM 

20 comprising CW generating information and the TECM 
also comprising control word generating information for 
generating the same C W as the ECM (step 21 0). An out- 
put SDDS is thus produced. The output SDDS is then 
output (step 215) 

25 Reference is now made to Fig. 5. which is a simpli- 
fied flowchart illustration of a preferred implementation 
of step 210 of Fig. 4. The method of Fig. 5 preferably 
comprises the following steps, which are preferably per- 
formed iteratively for each ECM in the input SDDS: 

30 One ECM and an SDSEG associated with the ECM 
are input (step 220). The CW associated with the ECM 
is generated from the ECM using an ECM key (step 
225). A TECM is generated using a TECM key, the 
TECM comprising information for generating the same 

35 CW as the ECM (step 230). The TECM is output (step 
235), and the SDSEG associated with the ECM, and 
thus also associated with the TECM. is also output (step 
240). 

It is appreciated that various features of the inven- 
-io tion which are, for clarity, described in the contexts of 
separate embodiments may also be provided in combi- 
nation in a single embodiment. Conversely, various fea- 
tures of the invention which are, for brevity, described 
in the context of a single embodiment may also be pro- 
^^5 vided separately or in any suitable subcombination. It is 
particularly appreciated that the functions described 
herein as being performed by a removable security de- 
vice or smart card may be performed by another appro- 
priate part of the system described, such as an IRD. 
50 It will be appreciated by persons skilled in the art 
that the present invention is not limited by what has been 
particularly shown and described hereinabove. Rather 
the scope of the invention is defined only the by claims 
which follow: 

ss 
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Claims 



ing: 



1 , A method for producing an output scrambled digital 
data stream from an input scrambled digital data 
stream, the input scrambled digital data stream s 
comprising a plurality of control messages (ECMs), 
each ECM comprising coded information for gener- 
ating a control word (CW) associated with the ECM 
and being encoded using an ECM key. the input 
scrambled digital data stream also comprising a io 
plurality of segments of scrambled digital data, each 
segment of scrambled digital data being associated 
with one of the plurality of ECMs and being scram- 
bled using the CW associated with the ECM, the 
method comprising: is 4. 

replacing each of the plurality of ECMs with a 
corresponding transformed ECM (TECM). 
each corresponding TECM comprising coded 
information for generating the CW associated 20 
with the corresponding ECM and being encod- 
ed using a TECM key. thus producing the out- 
put scrambled digital data stream, 
wherein the ECM key is replaced with a new 
ECM key at an ECM key change time, and the 2S 
TECM key is not replaced at the ECM key 
change time. 



A method according to claim 1 and wherein the step 
of replacing comprises performing the following 
steps iteratively for each one of the plurality of EC- 
Ms: 

receiving the one ECM and the segment of 
scrambled digital data associated therewith; 
generating the associated CW from the one 
ECM using the ECM key; 
generating a transformed ECM (TECM) com- 
prising coded information for generating the as- 
sociated CW and being encoded using a TECM 
key; 

outputting the TECM; and 
outputting the segment of scrambled digital da- 
ta associated with the ECM. 



30 



35 6. 



40 7. 



45 8. 



A method for recording, on a recording medium, a 
broadcast scrambled digital data stream to produce 
a scrambled digital recording, the broadcast scram- 
bled digital data stream comprising a plurality of 9. 
control messages (ECMs), each ECM comprising so 
coded information for generating a control word 
(CW) associated with the ECM and being encoded 
using an ECM key, the broadcast scrambled digital 
data stream, also comprising a plurality of seg- 
ments of scrambled digital data, each segment of ss 
scrambled digital data being associated with one of 
the plurality of ECMs and being scrambled using the 
CW associated with the ECM. the method compris- 



receiving the broadcast scrambled digital data 
stream; and 

recording on the recording medium a scram- 
bled digital data stream comprising a plurality 
of transformed ECMs (TECMs) and the plurality 
of segments of digital data, wherein each of the 
plurality of ECMs is replaced with a correspond- 
ing TECM, each corresponding TECM com- 
prising coded information for generating the 
CW associated with the corresponding ECM 
and being encoded using a TECM key. 

A method according to claim 3 and wherein the re- 
cording step comprises performing the following 
steps iteratively for each one of the plurality of EC- 
Ms in the broadcast scrambled digital data stream: 

generating the associated CW from the one 
ECM using the ECM key; 
generating a TECM comprising coded informa- 
tion for generating the associated CW and be- 
ing encoded using a TECM key; 
recording the TECM on the recording medium; 
and 

recording the segment of scrambled digital data 
associated with the one ECM on the recording 
medium. 

A method according to either claim 3 or claim 4 and 
wherein the recording medium comprises a digital 
tape. 

A method according to either claim 3 or claim 4 and 
wherein the recording medium comprises a compu- 
ter-accessible storage medium associated with a 
computer. 

A method according to any of claims 3 - 6 and 
wherein the broadcast scrambled digital data 
stream comprises a television scrambled digital da- 
ta stream. 

A method according to any of the preceding claims 
and wherein each of the plurality of ECMs is encod- 
ed using a hashing method. 

Apparatus for recording, on a recording medium, a 
broadcast scrambled digital data stream to produce 
a recorded scrambled digital data stream, the 
broadcast scrambled digital data stream compris- 
ing a plurality of scrambling control messages (EC- 
Ms), each ECM comprising coded information for 
generating a control word (CW) associated with the 
ECM and being encoded using an ECM key. and a 
plurality of segments of scrambled digital data, each 
segment of scrambled digital data being associated 
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with one of the plurality of ECMs and being scram- 
bled using the CW associated with the ECM. the 
apparatus connprising: 

receiving apparatus for receiving the broadcast 
scrambled digital data stream; and 
recording apparatus for recording on the re- 
cording medium a scrambled digital data 
stream comprising a plurality of transformed 
ECMs (TECMs) and the plurality of segments 
of digital data, wherein each of the plurality of 
ECMs is replaced with a corresponding TECM, 
each corresponding TECM comprising coded 
information for generating the CW associated 
with the corresponding ECM and being encod- 
ed using a TECM key. 

10. Apparatus for producing an output scrambled digital 
data stream from an input scrambled digital data 
stream, the input scrambled digital data stream 
comprising a plurality of scrambling control mes- 
sages (ECMs), each ECM comprising coded infor- 
mation for generating a control word (CW) associ- 
ated with the ECM and being encoded using an 
ECM key, and a plurality of segments of scrambled 
digital data, each segment of scrambled digital data 
being associated with one of the plurality of ECMs 
and being scrambled using the CW associated with 
the ECM. the apparatus comprising: 

ECM replacement apparatus for replacing each 
of the plurality of ECMs with a corresponding 
transformed ECM (TECM), each correspond- 
ing TECM comprising coded information for 
generating the CW associated with (he corre- 
sponding ECM and being encoded using a 
TECM key, 

wherein the ECM key is replaced with a new 
ECM key at an ECM key change time, and the 
TECM key is not replaced at the ECM key 
change time. 

1 1 . Apparatus according to claim 9 and wherein the re- 
cording apparatus comprises: 

a CW extractor for generating the associated 
CW from each of the plurality of ECMs using 
the ECM key; 

a TECM generator for receiving the associated 
CW from the CW extractor and for generating 
a TECM comprising coded information for gen- 
erating the associated CW and being encoded 
usinga TECM key; and 
medium recording apparatus for receiving the 
TECM from the TECM generator and the seg- 
ment of scrambled digital data from the receiv- 
ing apparatus and for recording the TECM and 
the segment of scrambled digital data associ- 



ated with the one of the plurality of ECMs on 
the recording medium. 

12. Apparatus according to claim 10 and wherein the 
5 ECM replacement apparatus comprises: 

a CW extractor for generating the associated 
CW from each of the plurality of ECMs using 
the ECM key; and 
10 a TECM generator for receiving the associated 

CW from the CW extractor and for generating 
a TECM comprising coded information for gen- 
erating the associated CW and encoded using 
a TECM key. 

75 

13. Apparatus according to either claim 11 or claim 12 
and also comprising a removable security device, 

wherein the removable security device com- 
20 prises the CW extractor 

14. Apparatus according to claim 13 and wherein the 
removable security device also comprises the 
TECM generator. 

25 

15. Apparatus according to either claim 13 or claim 14 
and wherein the removable security device com- 
prises a smart card. 

30 16. Apparatus for transforming a scrambling control 
message (ECM) comprising coded information for 
generating a control word (CW) associated with the 
ECM and being encoded using an ECM key into a 
transformed scrambling control message (TECM), 

35 the apparatus comprising: 

ECM input apparatus for receiving the ECM; 
a CW extractor for generating the associated 
CW from the ECM using the ECM key; 

40 a TECM generator for generating a trans- 

formed ECM (TECM) comprising coded infor- 
mation for generating the associated CW and 
being encoded using a TECM key; and 
ECM output apparatus for outputting the 

45 TECM, 

wherein the ECM key is replaced with a new 
ECM key at an ECM key change time, and the 
TECM key is not replaced at the ECM change 
time. 

50 

1 7. Apparatus for producing an output scrambled digital 
data stream from an input scrambled digital data 
stream, the input scrambled digital data stream 
comprising a plurality of control messages (ECMs). 
55 each ECM comprising coded information for gener- 
ating a control word (CW) associated with the ECM 
and being encoded using an ECM key. the input 
scrambled digital data stream also comprising a 
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18. 



plurality of segments of scrambled digital data, each 
segment of scrambled digital data being associated 
with one of the plurality of ECMs and being scram- 
bled using the CW associated with the ECfsA, the 
apparatus comprising; 

scrambled digital data stream input apparatus 
for receiving an ECM and a segment of scram- 
bled digital data associated therewith; 
ECM replacement apparatus for replacing the 
ECM with a transformed ECM (TECM); and 
scrambled digital data stream output apparatus 
for outputting the output scrambled digital data 
stream comprising the TECM and the segment 
of scrambled digital data, 
wherein the ECM key is replaced with a new 
ECM key at an ECM key change time, and the 
TECM key is not replaced at the ECM key 
change time. 

Apparatus according to claim 17 and also compris- 
ing: 



20. Apparatus according to claim 19 and wherein the 
removable security element comprises a smart 
card. 

21. A method for transforming a scrambling control 
message (ECM) comprising coded information for 
generating a control word (CW) associated with the 
ECM and being encoded using an ECM key into a 
transformed scrambling control message (TECM), 
the method comprising: 



10 



IS 



20 



ECM interface apparatus for outputting the 
ECM and receiving the TECM. 2S 

19. Apparatus according to claim 18 and wherein the 
ECM interface is adapted to receive a removable 
security element. 
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35 



each ECM comprising coded information for gener- 
ating a control word (CW) associated with the ECM 
and being encoded using an ECM key the input 
scrambled digital data stream also comprising a 
plurality of segments of scrambled digital data, each 
segment of scrambled digital data being associated 
with one of the plurality of ECMs and being scram- 
bled using the CW associated with the ECM, the 
method comprising: 

receiving an ECM and a segment of scrambled 
digital data associated therewith; 
replacing the ECM with a transformed ECM 
(TECM); and 

outputting the output scrambled digital data 
stream comprising the TECM and the segment 
of scrambled digital data, 
wherein the ECM key is replaced with a new 
ECM key at an ECM key change time, and the 
TECM key is not replaced at the ECM key 
change time. 

23. A method according to claim 22 and also compris- 
ing: outputting the ECM and receiving the TECM. 

24. A method according to claim 23 and wherein the 
step of outputting the ECM and receiving the TECM 
comprises: 

outputting the ECM to a removable security el- 
ement and receiving the TECM from the remov- 
able security element 

25. A method according to claim 24 and wherein the 
removable security element comprises a smart 
card. 



40 



receiving the ECM; 

generating the associated CW from the ECM 
using the ECM key; 

generating a transformed ECM (TECM) com- 
prising coded information for generating the as- 
sociated CW and being encoded using a TECM 
key; and 

outputting the TECM, 

wherein the ECM key is replaced with a new 
ECM key at an ECM change time, and the 
TECM key is not replaced at the ECM change 
time. 



45 



so 



22. A method for producing an output scrambled digital 
data stream from an input scrambled digital data 
stream, the input scrambled digital data stream 
comprising a plurality of control messages (ECMs). 
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FIG. 4 
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205 



RECEIVE INPUT SCRAMBLED 
DATA STREAM 



REPLACE EACH ECM HAVING CW GENERATING 
INFORMATION IN THE INPUT SCRAMBLED DATA 
STREAM WITH A TECM HAVING INFORMATION 
FOR GENERATING THE SAME CW 



215 



OUTPUT THE OUTPUT SCRAMBLED 
DATA STREAM 



FIG. 5 

PERFORM ITERATIVE LY FOR EACH ECM: 



INPUT ONE ECM AND A SEGMENT OF SCRAMBLED 
DIGITAL DATA ASSOCIATED WITH THE ONE ECM 
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220 

225 
230' 



GENERATE THE ASSOCIATED CW FROM 
THE ONE ECM USING AN ECM KEY 



GENERATE A TECM HAVING INFORMATION 
. FOR GENERATING THE SAME CW, 
ENCODED USING A TECM KEY 
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OUTPUT THE TECM 
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OUTPUT THE SEGMENT OF SCRAMBLED 
DIGITAL DATA ASSOCIATED WITH THE ECM 
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